PT-2025-43581 · WordPress · Pixelyoursite Wordpress Plugin

·

CVE-2025-10723

·

Publicado

2025-10-24

·

Atualizado

2025-10-24

CVSS v3.1

2.7

Baixa

VetorAV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions PixelYourSite WordPress plugin versions prior to 11.1.2
Description The PixelYourSite WordPress plugin does not properly validate certain URL parameters before utilizing them to construct file paths that are then passed to functions. This insufficient validation allows administrators to potentially carry out Local File Inclusion (LFI) attacks.
Recommendations Update the PixelYourSite WordPress plugin to version 11.1.2 or later.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2025-10723

Produtos afetados

Pixelyoursite Wordpress Plugin